Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
New Member

Destination NAT and Source Nat

Hi, my network have mobile users with notebooks, and they use public smtp IP address, when they out of office, without VPN ASA works well, but when they comes back in office they should change SMTP IP back to private. I know that my task could be solved via DNS service, but for some reason I should do Dnat and Snat on ASA, please answer me, Is it posible? (Because ASA have to nat and dnat on same interface Insidem and back this traffic to Inside again

)Please see this picture, I draw my task there. Thanks!

Everyone's tags (4)
1 REPLY

Re: Destination NAT and Source Nat

Yes it is posible through policy nat.

here is the example.

access−list policy−nat extended permit ip host 10.1.1.20 host 5.5.5.5

global (dmz) 2  192.168.2.2

nat (inside) 2 access-list policy−nat

Hope that helps.

thanks

474
Views
0
Helpful
1
Replies
CreatePlease to create content